VUMETRIC
CYBER PORTAL
Dashboard
Security News
Latest Vulnerabilities
Browse Vulnerabilities
by Vendors
by Products
by Categories
Weekly Reports
Vulnerabilities
>
Debian
> Debian Linux
Exclude new CVEs:
DATE
CVE
VULNERABILITY TITLE
RISK
2021-11-05
CVE-2021-35368
OWASP ModSecurity Core Rule Set 3.1.x before 3.1.2, 3.2.x before 3.2.1, and 3.3.x before 3.3.2 is affected by a Request Body Bypass via a trailing pathname.
network
low complexity
owasp
fedoraproject
debian
critical
9.8
9.8
2021-11-05
CVE-2021-3927
vim is vulnerable to Heap-based Buffer Overflow
local
low complexity
vim
fedoraproject
debian
7.8
7.8
2021-11-05
CVE-2021-3928
vim is vulnerable to Use of Uninitialized Variable
local
low complexity
vim
fedoraproject
debian
7.8
7.8
2021-11-04
CVE-2021-43400
Use After Free vulnerability in multiple products
An issue was discovered in gatt-database.c in BlueZ 5.61.
network
low complexity
bluez
debian
CWE-416
critical
9.1
9.1
2021-11-04
CVE-2021-43389
Out-of-bounds Read vulnerability in multiple products
An issue was discovered in the Linux kernel before 5.14.15.
local
low complexity
linux
redhat
debian
oracle
CWE-125
5.5
5.5
2021-11-03
CVE-2021-22960
HTTP Request Smuggling vulnerability in multiple products
The parse function in llhttp < 2.1.4 and < 6.0.6.
network
low complexity
llhttp
oracle
debian
CWE-444
6.5
6.5
2021-11-03
CVE-2021-40985
Out-of-bounds Read vulnerability in multiple products
A stack-based buffer under-read in htmldoc before 1.9.12, allows attackers to cause a denial of service via a crafted BMP image to image_load_bmp.
local
low complexity
htmldoc-project
debian
CWE-125
5.5
5.5
2021-11-03
CVE-2021-37147
Improper input validation vulnerability in header parsing of Apache Traffic Server allows an attacker to smuggle requests.
network
low complexity
apache
debian
7.5
7.5
2021-11-03
CVE-2021-37148
Improper Input Validation vulnerability in multiple products
Improper input validation vulnerability in header parsing of Apache Traffic Server allows an attacker to smuggle requests.
network
low complexity
apache
debian
CWE-20
7.5
7.5
2021-11-03
CVE-2021-37149
Improper Input Validation vulnerability in multiple products
Improper Input Validation vulnerability in header parsing of Apache Traffic Server allows an attacker to smuggle requests.
network
low complexity
apache
debian
CWE-20
7.5
7.5
«
Previous
1
2
...
167
168
169
(current)
170
171
...
762
763
»
Next